エピソード

  • Breaking Down the IT-OT Wall: Why IT Cybersecurity Tools Fail on the Plant Floor
    2025/07/08

    In this episode, Dino Busalachi and Craig Duckworth tackle a critical disconnect plaguing industrial organizations: the disconnect in understanding and communication between IT and OT regarding industrial cybersecurity.

    While some IT departments are investing in OT cybersecurity platforms, 85% of the data these tools collect is designed for OT teams to act upon. Unfortunately, plant floor personnel, system integrators, and OEMs working in these environments rarely get access to dashboards, asset inventories, or vulnerability reports.

    Organizations must move beyond the "oil and water" mentality between IT and OT. This means involving plant personnel in cybersecurity decisions, sharing data with trusted partners who "build the cars" (not just buy them), and recognizing that effective OT security requires collaboration with the people who live and breathe on the plant floor every day.

    Bottom Line: If you're not sharing cybersecurity data with your system integrators, OEMs, and plant operations teams, you're not practicing true IT-OT convergence. You're missing critical opportunities to improve your security posture where it matters most.

    Chapters:

    • 00:00:00 - Why Local Collaboration is Critical for Cybersecurity Success
    • 00:01:07 - Meet Dino and Craig: Experts in IT/OT Integration
    • 00:01:49 - Unpacking the Challenges of IT/OT Convergence
    • 00:02:28 - Why IT and OT Teams Often Struggle to Align
    • 00:04:48 - Building Collaborative Frameworks for Stronger Cybersecurity
    • 00:07:33 - The Role of CIOs and CISOs in Driving Change
    • 00:08:44 - Navigating the Complexities of Diverse Plant Environments
    • 00:10:23 - Partnering with Vendors to Enhance Security Outcomes
    • 00:11:16 - Key Questions to Evaluate System Integrators Effectively
    • 00:16:35 - Using Tabletop Exercises to Align IT and OT Teams
    • 00:22:20 - Closing Thoughts: Bridging the Divide for Unified Cybersecurity

    Links And Resources:

    • Want to Sponsor an episode or be a Guest? Reach out here.
    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    24 分
  • The System Integrator’s Role in Supporting OT Security
    2025/07/01

    In this episode, Craig Duckworth and Dino Busalachi discuss the critical but often overlooked or misunderstood role of system integrators (SIs) in industrial cybersecurity.

    Key Issues Identified:

    • Organizations typically work with multiple specialized integrators across different facilities and systems
    • Some SIs lack cybersecurity expertise, focusing primarily on equipment functionality
    • Equipment can remain connected to networks for decades, with ownership and oversight changing hands over time
    • System integrators must exercise proper IT coordination to implement remote access solutions effectively

    Recommendations:

    • IT and OT teams should collaborate more closely with system integrators on cybersecurity planning
    • Organizations need to evaluate their SIs' cybersecurity capabilities and partnerships
    • Consider standardizing on integrators with demonstrated cybersecurity practices and vendor certifications
    • Apply the same due diligence used for IT vendor selection to OT system integrators

    Bottom Line: System integrators are essential partners in executing industrial cybersecurity strategies and protection. Organizations must actively engage them in security conversations and ensure they have the necessary skills and partnerships to implement secure solutions for their plant environments from the start.

    Chapters:

    • 00:00:00 - Real-World Ransomware Hits the Plant Floor
    • 00:00:52 - Meet the System Integrators Shaping Your OT Plant Floor Security
    • 00:01:17 - What System Integrators Really Do (and Don’t)
    • 00:04:13 - Remote Access: The Hidden Backdoor Nobody Sees
    • 00:08:34 - Why Ongoing Monitoring Is Non-Negotiable
    • 00:13:30 - How to Pick the Right System Integrator For Your Operations
    • 00:26:17 - Building Strong Partnerships with Your Integrators

    Links And Resources:

    • Want to Sponsor an episode or be a Guest? Reach out here.
    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    33 分
  • When IT Cyber Events Bring Down the Plant Floor
    2025/06/24

    Craig and Dino break down how cyberattacks that start in traditional IT systems can shut down entire manufacturing production lines, leading to massive financial losses.

    Using real-world examples like UNFI's $500 million drop in market value in 60 hours, they explain how overlooked connections between IT and the OT plant floor are often the weakest links.

    You’ll hear why simply installing firewalls isn’t enough, how organizational silos between IT and operations cause major blind spots, and what it really takes to secure industrial equipment.

    Whether you're in leadership, technology, or operations, this episode will change how you think about cyber risk and business continuity in connected environments.

    Chapters:

    • 00:00:00 - Introduction: Where Responsibility Ends and Authority Doesn’t Begin
    • 00:01:08 - Meet Your Guides: Dino & Craig On the Frontlines
    • 00:01:14 - When Cyber Hits the Plant Floor
    • 00:01:28 - Real-World Wake-Up: The Unify IT Incident
    • 00:02:36 - The Gaps No One’s Watching in OT Security
    • 00:03:18 - How Org Structure Can Make or Break Cyber Defense
    • 00:04:03 - Plugging in OT Visibility: IDS in Action
    • 00:04:43 - Who’s Really Calling the Shots—Corporate or the Plant?
    • 00:07:02 - IT-OT Convergence: What Leaders Must Understand
    • 00:13:14 - Building Cyber Defense That Actually Works
    • 00:15:25 - Recovery Starts Before the Breach
    • 00:17:37 - Why IT Alone Can’t Fix OT Problems
    • 00:24:55 - Just Getting Started? Here’s What to Do First
    • 00:28:33 - Final Word: You Can’t Secure OT Alone

    Links And Resources:

    • Want to Sponsor an episode or be a Guest? Reach out here.
    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    30 分
  • When CISOs Inherit the Plant Floor: What Happens Next?
    2025/06/17

    What happens when the CISO inherits responsibility for the security of the plant floor?

    Dino and Craig discuss a growing trend: CISOs are being expected to oversee cybersecurity for industrial plant floors. Unfortunately, they don't have the background to effectively take on this responsibility.

    A perpetuating trend exists where cybersecurity leaders are expected to protect factories and industrial assets without the authority, tools, or support to do so effectively.

    In this conversation, Dino and Craig explain why traditional IT security approaches don’t work in these environments, and how things like outdated equipment, disconnected systems, and outside vendors make the challenge even harder.

    From weak remote access tools to the confusion around who actually manages plant security, this episode shines a light on the hidden risks most companies overlook.

    Whether you're in IT, operations, or a leadership role, you’ll walk away with a better understanding of how to approach cybersecurity in complex industrial settings.

    You'll also gain insights into the steps you can take to protect your people, your technology, and your bottom line.

    Chapters:

    • 00:00:00 - Kicking Off: Smart Tool Choices Start Here
    • 00:01:02 - When CISOs Inherit the Factory Floor
    • 00:02:17 - Making Friends with OEMs and Integrators
    • 00:04:47 - Why OT Security Is a Whole Different Beast
    • 00:08:50 - Cyber Budgets: Where’s the Money Really Coming From?
    • 00:13:10 - How to Actually Roll Out Security in the Plant
    • 00:18:35 - VPNs Aren’t Enough: Fixing Remote Access
    • 00:24:42 - What OT Incident Response Really Looks Like
    • 00:27:17 - Wrapping It Up: Strategy, Buy-In, and What’s Next

    Links And Resources:

    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    29 分
  • Reflections from the Front Lines of Industrial Cyber Failures
    2025/06/12

    In this rewind episode, cybersecurity leaders revisit some of the hardest-hitting truths about protecting critical infrastructure in an increasingly converged IT/OT world.

    This conversation explores the disconnect between IT theory and OT reality, from the real-world fallout of the CrowdStrike disruption to the challenges of virtual patching, insider threats, and the cloud’s role on the plant floor.

    The discussion exposes how legacy systems, poor collaboration, alert fatigue, and vendor dependency continue to sabotage industrial cybersecurity.

    They discuss tactical strategies for improving, from asset inventory and patching hygiene to choosing the right partners and walking the plant floor.

    Chapters:

    • 00:00:00 - Cyber threats are moving faster than your patch cycle
    • 00:00:47 - Crowdstrike, Virtual Patching and Industrial OT Environments with Debbie Lay, TXOne Networks
    • 00:07:48 - The #1 Myth Putting Your Industrial OT Assets at Risk
    • 00:15:01 - Patch Management and Software Updates: IT versus OT

    Links And Resources:

    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    22 分
  • What Every CISO Gets Wrong About OT Security
    2025/06/05

    In this episode, Dino and Craig tackle one of the most misunderstood topics in industrial cybersecurity: IT/OT convergence.

    But is it truly convergence or more of a collision?

    Drawing from real-world experiences, they challenge the idea that OT is a “shadow IT group” and argue that operational technology deserves distinct governance, funding, and strategic influence.

    From secure-by-design to system integrators' evolving role, this conversation is a call to action for CISOs, CIOs, and engineering leaders to rethink how they build cybersecurity partnerships across the plant floor.

    Chapters:

    • 00:00:00 - Opening Shot: Who’s Really in Charge—CIOs or the Plant Floor?
    • 00:00:57 - Collision Course: IT and OT Can’t Keep Dodging Each Other
    • 00:01:52 - Two Worlds, One Mission: Why OT Isn’t Just “IT in a Hard Hat”
    • 00:04:07 - When Convergence Fails: What’s Missing in the Middle
    • 00:05:54 - Breaking Silos: Why Cybersecurity Demands True Collaboration
    • 00:08:22 - Real Talk: What Cyber Protection Looks Like on the Plant Floor
    • 00:10:46 - OT’s Tipping Point: Will the Next Move Come from IT, or the Shop Floor?
    • 00:17:32 - Your Move: What Leaders Must Do Next (Before It’s Too Late)

    Links And Resources:

    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    21 分
  • OT Security in Hindsight: Visibility, Authority, and the Executive Disconnect
    2025/05/27

    In this special rewind edition of Industrial Cybersecurity Insider, we revisit some of the most powerful insights shared on how to elevate OT cybersecurity across complex, distributed environments.

    From budget allocation strategies to disaster recovery frameworks and the nuances of executive engagement, this episode distills frontline lessons into a compact, high-impact listen.

    Whether you're navigating remote access risks, managing hybrid architectures, or striving to align plant managers with corporate cybersecurity goals, these reflections are a roadmap for driving resilience and maturity in your OT security strategy.

    Chapters:

    • 00:00:00 - Rewind Kickoff: From Blind Spots to Bold Predictions
    • 00:00:46 - The A-Z of Industrial Cybersecurity for OT Environments with Industry Expert Bryson Bort
    • 00:10:57 - Gartner, DOGE, and the Future of OT Cybersecurity Policy
    • 00:21:38 - Uncovering Blind Spots in OT Cybersecurity

    Links And Resources:

    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    30 分
  • Bridging the IT-OT Divide with AI-Powered Insight
    2025/05/20

    Dino and Craig tackle one of the most misunderstood challenges in cybersecurity for industrial environments. The persistent disconnect between IT-led cybersecurity tools and operational technology realities.

    They explore the concept of "shadow OT," as well as the limits of traditional IDS deployments.

    They discuss why visibility is key to protecting critical systems. Vulnerability scanning alone isn't enough.

    Real world case studies reveal how failing to engage OT teams derails cybersecurity strategies.

    One case involved rogue servers causing daily production failures. Another featured misconfigured modules choking brewery operations. These examples show that even the most advanced strategies fail without OT team involvement.

    For leaders in manufacturing, utilities, and critical infrastructure, this is a must-listen conversation. It's about redefining risk management through OT-first thinking.

    Chapters:

    • 00:00:00 - When Machines Stop, Money Bleeds: The Downtime Dilemma
    • 00:00:47 - Shadow IT or Ingenious OT? Rethinking Rogue Tech
    • 00:02:29 - Cybersecurity Isn’t Enough: The OT Risk You’re Missing
    • 00:04:37 - Server Ghosts & Brewery Blunders: Fixing What IT Can’t See
    • 00:06:41 - Visibility is Power: Using the Tools You Already Own
    • 00:09:50 - IT vs. OT: Breaking Silos, Building Alliances
    • 00:13:28 - Final Thoughts: Who Really Owns OT Security?

    Links And Resources:

    • Industrial Cybersecurity Insider on LinkedIn
    • Cybersecurity & Digital Safety on LinkedIn
    • BW Design Group Cybersecurity
    • Dino Busalachi on LinkedIn
    • Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!

    続きを読む 一部表示
    17 分